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\eans for classifying content objects; 



meank for classifying rights management information; 

a user classifier, including 

means for using audit trails in assigning users to classes; 

means for using profiles in assigning users to classes; and 

a matching engine which receives classification information from the 
object classifier and the user classfaeirand matches classified information. 

137. A matching and classification utility as in\Claim 1 36 further including a 
rights operating system. 

138. A matching and classification utility as in Claim\l36 further including a 
memory storing rights management information. 

139. A matching and classification utility as in Claim 136 inVhich the matching 
engine further includes control means which use rights rr\anagement 
information to at least in part control the operations of the notching 
engine. 
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). A matching and classification utility as in Claim 136 in which the object 
classifier includes means for classifying metadata information. 

141 . A method, including the steps of: 

providing\ights management information, content objects and metadata to 
an object classifier; 

controlling the operation of the object classifier using a rule; 




based on the provided in 
assigning information to cat 



ion and the rule, the object classifier 
es and generating matching information; 



storing the matching information in la secure container, the secure 
container having associated a rule at \ast in part governing use of the 
secure container contents; and 

providing the secure container to a third party. 

142. A method as in Claim 140, in which the step of the object classifier 

assigning information to categories includes assigning information to a 
class within a class hierarchy. 
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5. A method as in Claim 140, further including creating an audit record 
indicating the results of the assignment of information to categories. 

144. AViethod as in Claim 140 in which the matching information matches a 
userto a content object. 

145. A method^as in Claim 140, in which the matching information matches a 
rule to a conrent object. 

146. A method including! the steps of: 




at a node associate 
collection governed at 
participant; 



user, collecting usage information, the 
in part by a rule provided by a value chain 



sending the collected information to a usage clearinghouse; 

the usage clearinghouse analyzing the\jsage information and providing 
analysis information to a matching and classification utility; 

the matching and classification utility using information provided from the 
usage clearinghouse to assign the user to a class 



A 



Jfe PATENT 
Attorney Docket No.: 7451.0010-01 
inierTrust Ref. No.: !T-14.1(US) 

tte matching and classification utility selecting a content object for 
communication to the user, the content object selected at least in part 
baseld on the class assignment; 

the matclruig and classification utility packaging the content object in a 
secure container, the secure container having associated a rule set at 
least in part governing use of at least a portion of the secure container 
contents; 



the matching and classification utility providing the secure container to the 
user. 

147. A method as in Claim 146, former including: 

before the matching and classification utility provides the secure container 
to the user, the matching and classification utility receiving the content 
object and assigning the content object to a class, 

the selection of the content object based a^least in part on the class to 
which the content object was assigned. 
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148. A method as in Claim 146, in which the rule set includes a rule provided 
by a content provider or publisher and a rule provide^ by the matching and 
classification utility. 
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149\ A method as in Claim 146, further including: 

beforMhe matching and classification utility provides the secure container 
to the usee the matching and classification utility communicating with a 
content provider, the communication including information about the user 
class, the contenr^rovider providing the content object to the matching 
and classification utility at least in part in response to the communication. 



150. A method as in Claim 149 



ler including: 



before the content provider provides the content object to the matching 
and classification utility, the content provia^r packaging the content object 
in a secure container. 

I5\A method including the following steps: 

creating ^secure container; 

associating a first rule wltti^the secure container, the rule at least in part 
governing use of at least somebt^he secure container contents, the first 
rule at least in part specifying potentiarb^ers or recipients of the secure 
container contents, the specification being basted at least in part on a class 
to which the potential users or recipients have beeric^signed; 
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Riding the secure container to a first remote party; 

the first remote party embedding a content object in the secure container; 

sending the secure container, including the embedded content object, to a 
second remote party^he second remote party consisting of a potential 
user; 

evaluating a digital certificate associated with the potential user; 

determining, based at least in part on tne digital certificate, that the 
potential user has been assigned to a clasKand 

based on the determination, and at least in part uncter control of the first 
rule, making at least some of the secure container contents available to the 
potential user. 

1 52. A method as in Claim 1 51 , further including: 

the first remote party associating a second rule with the secure container, 
the second rule at least in part governing use of at least a portion of the 
secure container contents; and 
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the step of making at least some of the secure container contents 
available to the potential user occurring at least in part under control of the 
second rule. 
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153. A method as in Claim 151, further including: 

assigning the potential user to the class, the assignment being based at 
least in part on the potential user's use of content. 

1 54. A method as in Claim 1 53 in which the assignment of the potential user to 
the class is based at least in part on demographic information. 

155. A method as in Claim 154, further including: 

following the potential user's access to the secure container contents, 
generating an audit trail describing an aspect of the access and providing 
the audit trail to a remote site. 



A method including the steps of: 



receiving a o 



a matching and classification utility; 




assigning the content objecf to ahsl^ss, the classification based at least in 
part by one or more topics to which the coritent object relates; 
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&t a user site, generating user demographic information, including 
information entered by the user; 

transmitting the demographic information to the matching and 
classification utility; 

at a user site, generating usage information relating to usage of content by 
the user; 

transmitting the usage information to the matching and classification utility; 



at the matching and classification 



{jty, using the demographic 



information and the usage information to\assign the user to a class; 

at the matching and classification utility, matching the content object to the 
user based at least in part on the content object clasSSyand the user class; 



based at least in part on the match, transmitting the content dfcyect to the 
user in a first secure container having associated a first rule at lea^t in part 
governing use of at least a portion of the secure container contents. 
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157. A method as in Claim 156, further including: 



A 



IP 



V 

befote the transmission of the usage information to the matching and 
classification utility, transmitting the usage information to a usage 
clearinghouse, the usage clearinghouse analyzing the usage information 
and transmitting the usage information to the matching and classification 
utility. 



158. A method as in Claim 156, in which: 



the matching and classification utility receives the content object from a 
first remote site, the content object being received in the first secure 
container; and 

the content object is transrAitt^sl to the user in a secure container having 
associated the first rule and havina associated a second rule, the first and 
second rules at least in part governing use of at least a portion of the 
secure container contents, the seconcnrule being associated with the 
secure container by the matching and classification utility. 
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159. A method as in Claim 156, in which the usages information includes 
information relating to a payment method used ay the user. 
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A method as in Claim 156, further including: 
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thejriatching and classification utility receiving rating information from a 
remote source, the rating information rating an aspect of the content 
object; ar 

the matching an\ classification utility using the rating information in 
assigning the content object to a class. 

161 . A digital commerce systerrKincluding: 



a first matching and classification^ ^including: 



an object classifier; 

a user classifier including means for analyzing usage data and 
using the usage data to assign users to closes; 

a matching engine; 

a communications port connected to an external netwo)^; 
a protected processing environment; and 
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ne or more memories storing 




one or more rules designed to at least in part control the 
perations of the object classifier, user classifier, or 
matching engine; 



usage data received from a usage clearinghouse; and 



a digital certificate; 



the digital commerce system furth^flncluding a usage clearinghouse 

\f 

including: 

a communications port for receiving audit trail information from 
users and for communicating usag^ data to the first matching and 
classification utility; 



a memory storing audit trail information received from users; and 



a processor for analyzing audit trail information\nd creating usage 
data. 
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A digital commerce system as in Claim 161 , further including: 
^certifying authority including: 

means for issuing digital certificates; 

a opmmunications port connected to an external network; and 

the first matclring and classification utility further including means for 
associating digital certificates with classes. 




163. A digital commerce sy^tem^s in Claim 161, further including: 
a secure directory semceBrode, including 



a communications port contaected to an external network; 

means for receiving requests for ihjormation about class 
memberships, 

and a memory storing a database of information, including 
information correlating individuals with class memberships. 
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164\ A digital commerce system as in Claim 161, in which: 

the first matching and classification utility is associated with a first 
Organization and the digital commerce system further including: 



a second matching and classification utility associated with a second 
organization, the second matching and classification utility including: 

an object classifier; 

a user classier, including means for analyzing usage data and 
using the usaga data to assign users to classes; 

a matching engineA iO 

a communications port connected to an external network; 

a protected processing environment; and 

one or more memories storing \ 

one or more rules designed to at least in part control the 
operations of the object classifier, user classifier or matching 
engine, 
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usage data received from a usage clearinghouse, and 

a digital certificate. 

A digital commerce system as in Claim 164, further including network 
means for routing requests for matching and classification services to the 
first matching and classification utility or the second matching and 
classification utility, the routing means including means for evaluating 
whether the requests are appropriate for the first organization or the 
second organization. 

1 66. A network including the following: 

a first matching ana\classification utility associated with a first vertical 
market, the first matching and classification utility including: 

an object classifier; 

a user classifier, including Wans for analyzing usage data and 
using the usage data to assig\users to classes; 

a matching engine; 

a communications port connected to an ^ternal network; 

15 
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a Votected processing environment; and 

one ok more memories storing 

on^or more rules designed to at least in part control the 
operations of the object classifier, user classifier or matching 
engme;\and 

a second matching and classification utility associated with a second 
vertical market, the second notching and classification utility including: 

an object classifier; 

a user classifier, including meanb^r analyzing usage data and 
using the usage data to assign use^s to classes; 

a matching engine; 

a communications port connected to an ext^nal network; 
a protected processing environment; and 
one or more memories storing 

16 
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ne or more rules designed to at least in part control the 
erations of the object classifier, user classifier or matching 
ine. 



en 



167. A network as in ClaNm 166, further including: 

two entities in the first Vertical market, each entity including 
communications means\or communicating with the first matching and 
classification utility; and 

two entities in the second ventical market, each entity including 
communications means for corr^riunicating with the first matching and 
classification utility. 

168. A network as in Claim 167, further iniduding: 

a first clearinghouse associated with the\irst vertical market, the first 
clearinghouse including communications means for communicating with 
the first matching and classification utility an\l for communicating with the 
first vertical market entities; and 

a second clearinghouse associated with the second vertical market, the 
second clearinghouse including communications qpeans for 

17 
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communicating with the second matching and classification utility and for 
communicating with the first vertical market entities. 

169. A net\Wk as in Claim 168, in which the first vertical market relates to 
publishir 

170. A network as\p Claim 168, in which the first vertical market relates to 
digital music. 




171 . A method including the steps of: 
generating a first content object; 

packaging the first content objact^ith metadata and a first rule; 

v\ 

communicating the first content object to a matching and classification 
utility; 




at the matching and classification utility, usiftg the metadata to assign the 
content object to a content class; 

packaging the first content object in a secure container having associated 
the first rule, a second rule added at the matching and classification utility, 
and metadata identifying the content class; 
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communicating the secure container to a user chosen based at least in 
part on a match between the content class and a user class to which the 
user nad been assigned; 



A 



at the userte site, the user complying with the first rule or the second rule 
and, based ofc the compliance, opening the secure container to retrieve at 
least a portion qf the first content object; and 



at the user's site, thte user using at least a portion of the first content 
object, the use at leas^ in part controlled by the first rule or the second 
rule. 



1 72. A method as in Claim 1 71 , fiJ 



lduding: 



before the step of communicating \he secure container to the user, the 
matching and' classification utility receiving demographic information from 
the user and, based at least in part on\he demographic information, the 
matching and classification utility assigning the user to the user class. 

173. A method as in Claim 172, further including: 
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before the matching and classification utility receives demographic 
information from the user, the user packaging the demographic 
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iitformation in a secure container and associating a rule with the secure 
container, the rule at least in part governing use of at least a portion of the 
secure container contents, the demographic information being received by 
the marching and classification utility in the secure container and the 
matching Vid classification utility complying with the rule in making a use 
of at least a portion of the demographic information. 



1 74. A method as in Glaim 1 71 , further including: 



before the step of communicating the secure container to the user, the 
matching and classification utilify receiving usage information from a 
usage clearinghouse, the i)$a6e)information relating to the user and, 



based at least in part on the 



sage information, the matching and 



classification utility assigning thevuser to the user class. 



175. A method as in Claim 174, in which: 



the usage information includes informationVelating to the user's usage of 
a second content object, the second content object being a member of the 
content class. 
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176^ A method including the following steps: 




first site, generating a secure container including a content object and 
lg associated a first rule, the first rule at least in part governing use of 
the secure container contents; 

communicating the secure container to a matching and classification utility 
located at a second site; 



at the matching and. classification utility, assigning the content object to a 

\ 

class, the assignmentxbased at least in part on the nature or identity of the 
first rule; 

selecting the content object fcy^ommunication to a third site, the selection 
being based at least in part on me class; and 

communicating the content object to me third site. 

177. A method as in Claim 176, further including: 

before the selection of the content object for communication to the third 
site, assigning the third site, or a user associated wkh the third site, to a 
user class, the selection of the content object for communication to the 
third site based at least in part on the user class. 

21 
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17^. A method as in Claim 177, further including: 

before the assignment of third site or the third site user to the user class, 
receiving information from a clearinghouse relating to the third site or the 
third arte user, the user class assignment based at least in part on the 
receiveaSinformation. 

179. A method as ita Claim 178, in which the information received from the 
clearinghouse rentes to one or more uses of content made by the third 
site user. 

180. A method as in Claim 1^9, in which the user class assignment is also 
based at least in part on aiwi ji£gtion from the user regarding types of 
content objects the user is int$re§fed in receiving. 

181. A method including the steps of: 

at a matching and classification utility, receiving information from a usage 
clearinghouse, the information relating to usage patterns of a first user; 

assigning the first user to a first user class, the assignment based at least 
in part on the usage clearinghouse information; 
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|t the matching and classification utility, receiving audit trail information 

a site associated with a second user, the audit trail information 
relating to a transaction entered into by the second user; 

assigninglhe second user to the first user class based at least in part on 
the audit transformation; 

at the matching anckclassification utility, receiving demographic 
information from a thira user; 



assigning the third user to the^rst user class based at least in part on the 
demographic information; 



packaging information relating to the 



firs\user class in a first secure 




container having associated a first rule at le^st in part governing at least a 
portion of the secure container contents; 

communicating the first secure container to a third 



the third party using the information to select the first usV» the second 
user and the third user; 

based at least in part on the selection, the third party providing \ content 
object to the first user, the second user and the third user. 
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1 8^. A method as in Claim 1 81 , further including: 

assigning the third user to a second user class based at least in part on 
thkthird user demographic information, the first and second users not 
beingyassigned to the second user class. 

183. A method a\ in Claim 181 , in which the second user audit trail information 
is received by ttoe matching and classification utility in a secure container 
having associatecNa second rule, and the matching and classification 
utility's use of the aucHJ trail information is governed at least in part by the 
second rule. 

184. A method as in Claim 183, ijfvtoich the second rule allows the provision of 
summary identification informatiorrsrelating to the second user to the third 
party for the purpose of the third part\selecting a content object for 
provision to the second user. 

185. A method as in Claim 181 , in which the content object is provided to the 
first user, the second user, and the third user in aSsecond secure 
container, having associated a second rule, the secVid rule at least in part 
governing use of at least a portion of the second secur^ container 
contents. 
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